Forum Home
Press F1
 
Thread ID: 46131 2004-06-14 10:41:00 Am I an instant cracker???!!!!!!!!!!! forrest44 (754) Press F1
Post ID Timestamp Content User
244399 2004-06-14 10:41:00 Hi

I was mucking around in Linux trying to upload some files to my website (http://coolpcs.orcon.net.nz). Discovered this program called Smb4K. It scanned the ¨network¨ and found some networks!! One was called ¨STRATHMORE¨ (name of A school up the road here in Tokoroa), another was ¨ENTIRE NETWORK¨ and another was ¨SOMERVILLE¨.

Maybe its something to do with my ISP. I´m on a local wireless scheme (http://southwaikato.net.nz/).

Anyway, went into the STRATHMORE one and discovered two of the computers were accessable (but had passwords on them). They had names like ROOM02, PRINCAPLE, OFFICE COMPUTER, ROOM07, and so on.

There was a computer in the ENTIRE NETWORK thingy that I was able to read and save files to the C drive!!

Isn´t that a bad effort from the system administrator??!!!

Forrest44
forrest44 (754)
244400 2004-06-14 11:10:00 Maybe you should do the right thing and email the school(s) and warn them that they are vulnerable. Baldy (26)
244401 2004-06-14 11:16:00 Dunno but if you get caught your in serious trouble. I'd also be wary that you don't have a 2 way street there.

Cheers Murray P
Murray P (44)
244402 2004-06-14 11:19:00 with a bit of effort you could just put a text file explaining whats happened and put a link into startup ;-)

someone should really shoot their IT guy tho :(
tweak'e (174)
244403 2004-06-14 11:56:00 > Am I an instant cracker???!!!!!!!!!!!

Not really...

There are windows machines open pretty much anywhere you look.

Fully writable shares, printable printers etc.

You are on the tip of an iceberg really.
whiskeytangofoxtrot (438)
244404 2004-06-14 13:01:00 Two things here:
Grab a copy of nmap and port-scan them, see what's up and running
Go here and grab a copy of IP Scan (www.radmin.com) and run it
Go to atstake.com (www.atstake.com), click Downloads and grab a copy of lc5 ;-)

Then, go to the relevant people with your findings :-)

You wouldnt be talking about this smb4k would you:
sal.neoburn.net

Hope this puts you on the right path


Chill.

P.S. No, you're not a cracker, nor a hacker, just somebody who's chanced across an open network. Dont get Crackers and Hackers mixed up either :-)
Chilling_Silence (9)
244405 2004-06-14 15:52:00 >Crackers and Hackers mixed up either
It seems like the Oxford English Dictionary is about to do just that.
mikebartnz (21)
244406 2004-06-14 22:08:00 > Grab a copy of nmap and port-scan them, see what's up
> and running
> Go
> here
> and grab a copy of IP Scan (www.radmin.com) and run it
> Go [url=http://www.atstake.com/products/lc/]to

Incidentally this kind of behaviour can quickly get your ISP account closed.
whiskeytangofoxtrot (438)
244407 2004-06-14 23:26:00 Yes, it can, and it can get you a job.

You ever been hired to analyse somebodies network?
Chilling_Silence (9)
244408 2004-06-14 23:43:00 > You ever been hired to analyse somebodies network?

Yes I have, but thats beside the point.

Not a smart idea to encourage that sort of thing.
whiskeytangofoxtrot (438)
1 2